Categories
podcast

Angry Tech News #79: Plan Malvertise

Right to Repair in California, T-Mobile gets greedy, Google gets paid to install malware, and a WinRAR vulnerability

Links

CA Right to Repair SB 244 passed
https://www.ifixit.com/News/84491/california-right-to-repair-signed-into-law

T-Mobile migrates customers to new more expensive plans
https://tmo.report/2023/10/breaking-t-mobile-will-force-customers-onto-newer-plans-unless-you-opt-out/

Search malvertising
https://www.bleepingcomputer.com/news/security/malicious-notepad-plus-plus-google-ads-evade-detection-for-months/
https://www.malwarebytes.com/blog/threat-intelligence/2023/10/clever-malvertising-attack-uses-punycode-to-look-like-legitimate-website

Youtube starting to block users who use ad-blocker
https://www.techspot.com/news/100524-youtube-intensifies-fight-against-ad-blockers-users-frustrated.html

WinRAR vulnerability
https://www.techspot.com/news/100553-if-you-havent-downloaded-or-updated-winrar-since.html

Categories
podcast

Angry Tech News #78: Houston Reactive

T-Mobile failed update, Microsoft closes a loophole no one was using, Cruise cars meet Houston weather, and software developers hate diversity

Links:

Libwebp vulnerability assigned new maximum severity
https://www.bleepingcomputer.com/news/security/google-assigns-new-maximum-rated-cve-to-libwebp-bug-exploited-in-attacks/

Libvpx vulnerability
https://arstechnica.com/security/2023/09/new-0-day-in-chrome-and-firefox-is-likely-to-plague-other-software/

Exim vulnerabilities disclosed
https://arstechnica.com/security/2023/09/critical-vulnerabilities-in-exim-threaten-over-250k-email-servers-worldwide/

T-Mobile faulty update exposes user info
https://arstechnica.com/tech-policy/2023/09/t-mobile-screwup-caused-customers-to-see-other-users-billing-information/

Win7/8 upgrade to Win10 finally disabled
https://www.zdnet.com/article/its-official-no-more-free-windows-10-upgrades/

Houston Cruise vehicles hit streets with expected results
https://www.chron.com/news/houston-texas/transportation/article/houston-cruise-self-driving-cars-18390306.php

Categories
podcast

Angry Tech News #77: Whiz Factor

Google defeats multifactor authentication, Pixel Watch is unrepairable, Ring sells a pet collar, Toyota learns the value of IT, and yet another vulnerability in the Internet

Links

Retool MFA defeated by Google convenience
https://retool.com/blog/mfa-isnt-mfa/

Pixel Watches are unrepairable
https://www.theverge.com/23874281/google-pixel-watch-cracks-no-repairs-warranty

Ring Pet Tag
https://www.yahoo.com/lifestyle/ring-launches-brand-pet-tag-141824261.html

Toyota manufacturing goes down. Dude named Ben about to get fired.
https://www.techspot.com/news/100067-toyota-insufficient-disk-space-blunder-brings-car-manufacturing.html

Critical WebP vulnerability
https://stackdiary.com/critical-vulnerability-in-webp-codec-cve-2023-4863/

Categories
podcast

Angry Tech News #76: Snappy Spyware

Spyware hacked for good, Apple OS hacked for bad, Windows hacked, but it makes things better, OpenAI confirms AI detectors are crap, and Automobiles are now officially the worst product category for privacy

Links

WebDetetive spyware hacked
https://techcrunch.com/2023/08/26/brazil-webdetetive-spyware-deleted/

Windows bug improves performance
https://www.tomshardware.com/news/windows-file-explorer-bug-ironically-boosts-browsing-performance

Blastpass vuln in Apple OS’s
https://arstechnica.com/gadgets/2023/09/apple-patches-clickless-0-day-image-processing-vulnerability-in-ios-macos/
https://citizenlab.ca/2023/09/blastpass-nso-group-iphone-zero-click-zero-day-exploit-captured-in-the-wild/

OpenAI: “Do AI Detectors Work?”
https://help.openai.com/en/articles/8313351-how-can-educators-respond-to-students-presenting-ai-generated-content-as-their-own

Mozilla reviews automakers for privacy practices
https://foundation.mozilla.org/en/privacynotincluded/articles/its-official-cars-are-the-worst-product-category-we-have-ever-reviewed-for-privacy/

Categories
podcast

Angry Tech News #75: Plonked Stratum

Breaches, breaches, breaches! Google solves meetings. And a Microsoft service becomes a liability in time

Links

UMich attack
https://www.detroitnews.com/story/news/local/michigan/2023/08/30/um/70716806007/

Forever 21 breach
https://techcrunch.com/2023/08/31/forever-21-data-breach-half-million/

Callaway breach
https://www.bleepingcomputer.com/news/security/golf-gear-giant-callaway-data-breach-exposes-info-of-11-million/

Google Duet AI vs meetings
https://metro.co.uk/2023/08/31/googles-ai-will-go-to-your-boring-meetings-for-you-19423340/

Windows Secure Time feature
https://arstechnica.com/security/2023/08/windows-feature-that-resets-system-clocks-based-on-random-data-is-wreaking-havoc/

Categories
podcast

Angry Tech News #74: Terabyte Windmills

Western Digital and Hewlett Packard facing lawsuits, Dropbox ends unlimited storage, Microsoft uses the word “python” a lot, and IoT devices continue to be a security nightmare

Links

NPR listens to ATN (maybe)
https://www.npr.org/2023/08/26/1195695051/driverless-cars-san-francisco-waymo-cruise
https://techcrunch.com/2023/08/18/cruise-told-by-regulators-to-immediately-reduce-robotaxi-fleet-50-following-crash/

Western Digital faces lawsuits over crappy SSD products
https://www.techspot.com/news/99831-western-digital-faces-class-action-lawsuit-over-failing.html

HP faces lawsuits over shady ink drivers
https://www.theregister.com/2023/08/11/judge_denies_hps_request_to/

Cloud “Python” coming to Excel
https://techcommunity.microsoft.com/t5/microsoft-365-blog/introducing-python-in-excel-the-best-of-both-worlds-for-data/ba-p/3905482

Dropbox dumps unlimited storage
https://blog.dropbox.com/topics/product/updates-to-our-storage-policy-on-dropbox-advanced
https://www.chia.net/chia-farming/

TP-Link smartbulb vulnerability
https://www.bleepingcomputer.com/news/security/tp-link-smart-bulbs-can-let-hackers-steal-your-wifi-password/

Categories
podcast

Angry Tech News #73: Identity Bubble

News Flash: CAPTCHAs are worthless! Plus, Food AI wants to kill us all. Microservices security is more scary and complicated than we imagined. And copyrights are eroding our culture

Links

Bots can solve CAPTCHAS faster than humans
https://www.theregister.com/2023/08/15/so_much_for_captcha_then/

NZ supermarket chain Pak ‘n’ Save AI meal planner suggests poison recipes
https://www.techspot.com/news/99750-supermarket-ai-meal-planner-suggests-chlorine-gas-ant.html

Shadow Access Impact Report
https://stackidentity.com/wp-content/uploads/2023/08/Shadow-Access-Impact-Report.pdf

Music labels only want culture preserved if they can control it
https://www.engadget.com/sony-and-other-music-labels-sue-internet-archive-for-digitizing-old-records-110108988.html

Categories
podcast

Angry Tech News #72: Unpatchable Substrate

Tesla jailbreak, a new type of keylogger, and new circuts to make your devices even LESS resistant to water

Links

Water-soluble circuit boards
https://www.techspot.com/news/99625-water-soluble-circuit-boards-promise-drastic-reduction-e.html
Tesla jailbroken
https://www.tomshardware.com/news/tesla-mcu-amd-asp-flaw-jailbreak
Acoustic keylogger
https://gizmodo.com/ai-acoustic-cyberattack-deep-learning-hackers-1850714550

Categories
podcast

Angry Tech News #71: Watchdog Trolling

Google presents an existential threat to the open web. Plus, gaming news!

Links

Ubisoft update
https://www.techspot.com/news/99529-ubisoft-now-claims-wont-delete-inactive-accounts-purchased.html

Web Environment Integrity
https://github.com/RupertBenWiser/Web-Environment-Integrity/issues/28
https://vivaldi.com/blog/googles-new-dangerous-web-environment-integrity-spec/

Modern Warfare II matchmaking servers taken down due to worm
https://www.techspot.com/news/99573-hackers-infecting-modern-warfare-2-players-self-spreading.html
Blizzard: Any mod to Diablo IV will get a permanent ban
https://us.forums.blizzard.com/en/d4/t/a-notice-regarding-unauthorized-game-modifying-software-in-diablo-iv/102121
Activision trolling cheaters, bans 14k accounts
https://www.techspot.com/news/99594-call-duty-bans-more-than-14000-cheaters-24.html
Pizza-scented controllers
https://news.xbox.com/en-us/2023/07/24/pizza-scented-xbox-and-tmnt-mutant-mayhem-controller/

Categories
podcast

Angry Tech News #70: Pixelated Grace

New EU battery regulations, Ubisoft does another bad thing, NFTs aren’t worth the paper they’re printed on, and a Native Ad for porn!

Links

EU requires all phones to have replacable batteries
https://www.androidauthority.com/phones-with-replaceable-batteries-2027-3345155/

Ubisoft deletes accounts, digital libraries, if you haven’t logged in recently
https://www.techspot.com/news/99507-ubisoft-delete-account-game-library-if-inactive-long.html

$2.9M Dorsey tweet NFT for sale, $2k OBO
https://www.techspot.com/news/99510-auction-29-million-jack-dorsey-tweet-nft-has.html

Unstable Diffusion releases AI porn generator
https://techcrunch.com/2023/07/21/as-ai-porn-generators-get-better-the-stakes-raise/